diff --git a/calendar_events.php b/calendar_events.php index c0808f9b..d2db8659 100644 --- a/calendar_events.php +++ b/calendar_events.php @@ -24,6 +24,7 @@ $sql = mysqli_query($mysqli,"SELECT * FROM events, calendars WHERE event_calenda while($row = mysqli_fetch_array($sql)){ $event_id = $row['event_id']; $event_title = $row['event_title']; + $event_description = $row['event_description']; $event_start = $row['event_start']; $event_end = $row['event_end']; $event_repeat = $row['event_repeat']; diff --git a/post.php b/post.php index 9aea9ab0..80a7739b 100644 --- a/post.php +++ b/post.php @@ -1313,13 +1313,14 @@ if(isset($_POST['add_event'])){ $calendar_id = intval($_POST['calendar']); $title = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['title']))); + $description = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['description']))); $start = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['start']))); $end = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['end']))); $repeat = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['repeat']))); $client = intval($_POST['client']); $email_event = intval($_POST['email_event']); - mysqli_query($mysqli,"INSERT INTO events SET event_title = '$title', event_start = '$start', event_end = '$end', event_repeat = '$repeat', event_created_at = NOW(), event_calendar_id = $calendar_id, event_client_id = $client, company_id = $session_company_id"); + mysqli_query($mysqli,"INSERT INTO events SET event_title = '$title', event_description = '$description', event_start = '$start', event_end = '$end', event_repeat = '$repeat', event_created_at = NOW(), event_calendar_id = $calendar_id, event_client_id = $client, company_id = $session_company_id"); //If email is checked if($email_event == 1){ @@ -1389,13 +1390,14 @@ if(isset($_POST['edit_event'])){ $event_id = intval($_POST['event_id']); $calendar_id = intval($_POST['calendar']); $title = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['title']))); + $description = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['description']))); $start = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['start']))); $end = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['end']))); $repeat = trim(strip_tags(mysqli_real_escape_string($mysqli,$_POST['repeat']))); $client = intval($_POST['client']); $email_event = intval($_POST['email_event']); - mysqli_query($mysqli,"UPDATE events SET event_title = '$title', event_start = '$start', event_end = '$end', event_repeat = '$repeat', event_updated_at = NOW(), event_calendar_id = $calendar_id, event_client_id = $client WHERE event_id = $event_id AND company_id = $session_company_id"); + mysqli_query($mysqli,"UPDATE events SET event_title = '$title', event_description = '$description', event_start = '$start', event_end = '$end', event_repeat = '$repeat', event_updated_at = NOW(), event_calendar_id = $calendar_id, event_client_id = $client WHERE event_id = $event_id AND company_id = $session_company_id"); //If email is checked if($email_event == 1){